Privacy Policy
This Privacy Policy explains how NowCook ("we," "us," or "our") collects, uses, and protects your personal information when you use nowcook.app and related services (the "Service").
1. Information We Collect
Information you provide
- Account & contact information — email address (required), name (optional), password (hashed).
- Cooking data — pantry contents, dietary preferences, allergies, household profiles, saved recipes.
- Billing information — handled by our payment processor (Paddle or Stripe). We do not store full card numbers.
- Support communications — when you email us, we keep a record of your message.
Information collected automatically
- Device and browser type, IP address, approximate location (derived from IP), pages visited, and timestamps — for security and analytics.
- Cookies and similar technologies as described in Section 6 below.
2. How We Use Your Information
- To provide and operate the Service (generate recipes, save your pantry, send your weekly plan).
- To process payments and manage subscriptions.
- To improve the Service and develop new features.
- To send essential service emails (account, billing, security) and, with your consent, product updates.
- To detect and prevent fraud, abuse, and security incidents.
- To comply with legal obligations.
3. Legal Bases (GDPR / UK GDPR)
If you are in the EEA or UK, we process personal data on the bases of contract (to deliver the Service), legitimate interest (security, analytics, improvement), consent (marketing emails, optional cookies), and legal obligation.
4. Sharing & Service Providers
We do not sell your personal information. We share data only with vendors who help us operate the Service, under written confidentiality and data-processing terms:
- Hosting: Cloudflare Pages.
- Payments: Paddle and/or Stripe (merchant of record handles transactions, tax, and chargebacks).
- Email: Loops.so (transactional and waitlist email).
- AI processing: OpenAI / Anthropic for recipe generation (your pantry text is sent for inference; we do not allow our providers to train on your data).
- Analytics: Privacy-respecting analytics (no cross-site tracking).
5. International Transfers
Our service providers are located primarily in the United States. Where required, we rely on Standard Contractual Clauses or equivalent safeguards for transfers from the EEA, UK, or Switzerland.
6. Cookies
We use strictly necessary cookies (login session, security) and, with your consent where required, optional analytics cookies. You may disable cookies in your browser, but parts of the Service may not function properly.
7. Data Retention
We retain account and pantry data for as long as your account is active. You may delete your account at any time from settings or by emailing [email protected]; deletion removes your personal data within 30 days, except where retention is required by law (e.g., tax records).
8. Your Rights
Depending on your jurisdiction, you may have the right to access, correct, delete, restrict, or port your personal data, and to object to certain processing or withdraw consent. To exercise these rights, email [email protected]. You may also lodge a complaint with your local data protection authority.
California residents (CCPA/CPRA): You may request access to or deletion of your personal information and opt out of any "sale" or "sharing" of personal information. NowCook does not sell personal information.
9. Children
The Service is not directed to children under 16. We do not knowingly collect personal information from children under 16. If you believe a child has provided us with personal data, contact us and we will delete it.
10. Security
We use industry-standard safeguards including TLS encryption in transit, encrypted storage at rest, hashed passwords, and least-privilege access controls. No method of transmission or storage is 100% secure.
11. Changes
We will post any updates to this Policy on this page and, for material changes, notify you by email at least 14 days before the change takes effect.
12. Contact
For privacy questions, contact [email protected].